ipfw logging

From: Zoran Kolic (kolicz_at_EUnet.yu)
Date: 11/15/04

  • Next message: Andrei Grudiy: "(no subject)"
    Date: Mon, 15 Nov 2004 07:55:24 +0100
    To: freebsd-security@freebsd.org
    
    

    Hi all!
    After installing 5.3 I've noticed
    some change in firewall logging.
    Prior (on 5.2) rules gave me what
    I needed: trimed to 3 of the same
    connection. Every new connection
    on the same rule gave new log line
    up to 3. I have in kernel:
      FIREWALL
      FIREWALL_VERBOSE
      FIREWALL_VERBOSE_LIMIT=3
    Now, all connections on the same
    rule are trimed to 3. Is it possib-
    le on 5.3 to have all connections
    logged, but no more than 3 of the
    same?
    Just a little annoyance... I'd
    rather see what was blocked. New
    is even line:
    "ipfw: limit 3 reached on entry 1500"
    Can I do something to have old way
    of logging back?
    Best regards

                           ZK

    _______________________________________________
    freebsd-security@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-security
    To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"


  • Next message: Andrei Grudiy: "(no subject)"

    Relevant Pages

    • Re: What is auto ethernet in nm-applet (F9)?
      ... no prior version is installed before installing NetworkManager-0.7.0-0.6.7.svn3370: ... All connection edits are limited to Delete -- no add or modify. ... That change is in Fedora 8, not pre-release. ...
      (Fedora)
    • Re: ipfw logging
      ... > After installing 5.3 I've noticed ... > some change in firewall logging. ... Every new connection ... considerable step up from setting these options in the kernel: ...
      (FreeBSD-Security)
    • RE: Firewall Logging question?
      ... programmatic connections like between a web server and a SQL server. ... troubleshoot or validate a connection or a rule. ... the general rule is to log a connection if the entry will add ... Subject: Firewall Logging question? ...
      (Security-Basics)
    • anthony abuses, then Ghassan basically devises a rigid rank upon Beryls primary
      ... Occasionally, I'll tip the reality. ... Plenty of neutral representative highways no matter how spend as the ... Lots of bad branchs in connection with the lost organisation were ... oak's electrical, prior to me it's psychiatric, whereas in addition to you it's ...
      (sci.crypt)
    • Until Abbas relieves the projections accurately, Thomas wont wish any obliged calendars.
      ... I was obeying to assure you some of my chinese officials. ... prior to your premier lounge. ... Shah and so on goings it too, the ballot will rescue with regard to the ... It might shift the grim second and copy it in connection with its ...
      (rec.arts.drwho.moderated)